ARTICLE AD BOX
Booking.com has confirmed a data breach where hackers accessed customers' personal information. The company sayss users financial data was not compromised. Affected users may have had their names, emails, and booking details exposed, prompting the company to update PIN numbers for security.
Booking.com has warned users about a data breachGlobal travel and hotel reservation giant Booking.com confirmed on Monday that hackers breached its systems and gained access to customers' personal data. Booking.com did not disclose the exact number of people affected by the attack, which regions were affectted or even the timeframe during whcih the breached occured. The company did confirm to The Guardian that “financial information was not accessed”.
What information was stolen?
According to customer notifications shared by users on social media platforms like Reddit, Bookit.com says that “unauthorized third parties may have been able to access certain booking information associated with your reservation.”
“We recently noticed suspicious activity affecting a number of reservations and we immediately took action to contain the issue.” the company said in a notification message shared on Reddit
The company noted that the hackers may have gained access to users' names, email addresses, phone numbers, and specific booking details. Disturbingly, the hackers were also able to view "anything that you may have shared with the accommodation," the company warned in the notification
“To keep your booking secure, we have updated the PIN number of your booking reservation.” the notification read
As per a TechCrunch report, the user who posted the notification screenshot said that they received a targeted phishing message via WhatsApp two weeks ago that accurately included their personal information and booking details. This suggests that the hackers may already be using the stolen data against the travellers.
Booking.com spokesperson Courtney Camp told TechCrunch that the company noticed "suspicious activity involving unauthorized third parties being able to access some of our guests’ booking information".
"Upon discovering the activity, we took action to contain the issue," the spokesperson said, adding that the company has updated the PIN numbers for the affected reservations and directly informed guests.
Booking.com had earlier sufferd a phishing attack in 2018 that compromised the booking data of over 4,000 customers by stealing login credentials from hotel employees in the UAE. The platform was later fined €475,000 by the Dutch Data Protection Authority for reporting the breach 22 days late, far exceeding the 72-hour legal limit.
How to stay safe?
If you were affected by the attack, there should be an official confirmation from Booking.com in your mailbox. Meanwhile, if you have made a recent booking on the platform, be extremely wary of urgent payment requests from hotelliers and prefer to only make the payment via the official portals.
If you do get a suspicious email or message asking for payment, report it immediatly to Booking.com's customer service.
About the Author
Aman Gupta
Aman Gupta is a Digital Content Producer at LiveMint with over 3.5 years of experience covering the technology landscape. He specializes in artificial intelligence and consumer technology, reporting on everything from the ethical debates around AI models to shifts in the smartphone market. <br> His reporting is grounded in first-hand testing, independent analysis, and a focus on how technology impacts everyday users. He holds a PG Diploma in Radio and Television Journalism from the Indian Institute of Mass Communication, Delhi (Class of 2022). <br> Outside the newsroom, he spends his time reading biographies, hunting for the perfect coffee beans, or planning his next trip. <br><br> You can find Aman on <a href="https://www.linkedin.com/in/aman-gupta-894180214">LinkedIn</a> and on X at <a href="https://x.com/nobugsfound">@nobugsfound</a>, or reach him via email at <a href="aman.gupta@htdigital.in">aman.gupta@htdigital.in</a>.

3 hours ago
1






English (US) ·